Tip
This is the documentation for the 23.02 version. Looking for the documentation of the latest version? Have a look here.
TNSR Documentation¶
This documentation has all the details needed to fully configure TNSR, from the basics all the way to the complexities of implementing different applications. For quotes, updates, and more information about TNSR, please visit tnsr.com or contact TNSR sales.
- Introduction
- Supported Platforms
- Installation
- Default Behavior
- Zero-to-Ping: Getting Started
- Command Line Basics
- Working in the TNSR CLI
- Finding Help
- Starting TNSR
- Entering the TNSR CLI
- Configuration Database
- Configuration Mode
- Configuration Backups
- Configuration History
- Configuration Rollback
- Viewing Status Information
- Networking Namespaces
- Service Control
- Diagnostic Utilities
- Basic System Information
- Rebooting the Router
- Basic Configuration
- Updates and Packages
- Interfaces
- Access Lists
- Static Routing
- Dynamic Routing
- ACL-Based Forwarding
- Virtual Router Redundancy Protocol
- IPsec
- WireGuard
- Tunnel Next Hops
- Network Address Translation
- MAP (Mapping of Address and Port)
- Dynamic Host Configuration Protocol
- DNS Resolver
- Network Time Protocol
- Link Layer Discovery Protocol
- Public Key Infrastructure
- Bidirectional Forwarding Detection
- User Management
- NETCONF Access Control Model (NACM)
- RESTCONF Server
- Monitoring
- TNSR Configuration Example Recipes
- RESTCONF Service Setup with Certificate-Based Authentication and NACM
- TNSR IPsec Hub for pfSense software nodes
- Edge Router Speaking eBGP with Static Redistribution for IPv4 And IPv6
- Service Provider Route Reflectors and Client for iBGP IPv4
- Zero-to-Ping: Getting Started
- Static LAN + WAN with NAT (Basic SOHO Router Including DHCP and DNS Resolver)
- Using Access Control Lists (ACLs)
- Inter-VLAN Routing
- GRE ERSPAN Example Use Case
- OSPF Router with Multiple Areas and Summarization
- WireGuard VPN for Remote Access
- WireGuard VPN with OSPF Dynamic Routing
- TNSR Remote Office With Existing IPsec Hub
- VRRP with Outside NAT
- Enabling the Serial Console
- Changing Credentials and Keys
- TNSR GUI Service with Client Certificate Authentication
- Advanced Configuration
- Troubleshooting
- Memory Usage and Tuning
- Services do not receive traffic on an interface with NAT enabled
- NAT session limits / “Create NAT session failed” error
- ACL rules do not match NAT traffic as expected
- ACL entries do not have any effect on bridge loopback (BVI) interfaces
- Some Traffic to the host OS management interface is dropped
- Unrecognized routes in a routing table
- OSPF Neighbors Stuck in ExStart State
- Large packets fail to pass over IPsec
- Associating TNSR Interfaces with Shell Interfaces
- Troubleshooting DHCP Client
- Locked out by NACM Rules
- How to gain access to the root account
- IPsec packets are dropped or fail to pass with QAT enabled
- Console DMA / PTE Read access Error Messages
- Console Messages Obscure Prompts
- Console Terminal Size
- Dataplane Packet Tracing
- Capturing Packets on Dataplane Interfaces
- RESTCONF API Errors
- Diagnosing Service Issues
- Debugging TNSR
- Diagnostic Information for Support
- Commands
- Mode List
- Basic Mode Commands
- Config Mode Commands
- Show Commands in Both Basic and Config Modes
- Access Control List Modes
- MACIP ACL Mode
- GRE Mode
- Interface Mode
- Interface IPv6 RA Mode
- Interface IPv6 RA Prefix Mode
- Loopback Mode
- Bridge Mode
- NAT Commands in Configure Mode
- Tap Mode
- BFD Key Mode
- BFD Mode
- Host Interface Mode
- Host Route Table Mode
- Host Route Mode
- Host Route IPv4/IPv6 Mode
- IPsec Tunnel Mode
- IKE mode
- IKE Peer Authentication Mode
- IKE Peer Authentication Round Mode
- IKE Child SA Mode
- IKE Child SA Proposal Mode
- IKE Peer Identity Mode
- IKE Proposal Mode
- Map Mode
- Map Parameters Mode
- memif Mode
- Dynamic Routing Access List Mode
- Dynamic Routing Prefix List Mode
- Dynamic Routing Route Map Mode
- Dynamic Routing BGP Mode
- Dynamic Routing BGP Server Mode
- Dynamic Routing BGP Neighbor Mode
- Dynamic Routing BGP Address Family Mode
- Dynamic Routing BGP Address Family Neighbor Mode
- Dynamic Routing BGP Community List Mode
- Dynamic Routing BGP AS Path Mode
- Dynamic Routing BGP RPKI Mode
- Dynamic Routing BGP RPKI SSH Mode
- Dynamic Routing BGP RPKI TCP Mode
- Dynamic Routing OSPF Mode
- Dynamic Routing OSPF Server Mode
- Dynamic Routing OSPF Interface Mode
- Dynamic Routing OSPF Area Mode
- Dynamic Routing OSPF6 Mode
- Dynamic Routing OSPF6 Server Mode
- Dynamic Routing OSPF6 Interface Mode
- Dynamic Routing OSPF6 Area Mode
- Dynamic Routing RIP Mode
- Dynamic Routing RIP Server Mode
- Dynamic Routing RIP Interface Mode
- Dynamic Routing RIP Key Chain Mode
- Dynamic Routing Manager Mode
- Route Table Mode
- Route Table Next Hop Mode
- SPAN Mode
- VXLAN Mode
- User Authentication Configuration Mode
- NTP Configuration Mode
- NTP Restrict Mode
- NTP Upstream Server Mode
- NACM Group Mode
- NACM Rule-list Mode
- NACM Rule Mode
- DHCP IPv4 Server Config Mode
- DHCP4 Subnet4 Mode
- DHCP4 Subnet4 Pool Mode
- DHCP4 Subnet4 Reservation Mode
- Kea DHCP4, Subnet4, Pool, or Reservation Option Mode
- Kea DHCP4 Option Definition Mode
- DHCP4 Log Mode
- DHCP4 Log Output Mode
- Unbound Server Mode
- Unbound Forward-Zone Mode
- Subif Mode
- Bond Mode
- Host ACL Mode
- Host ACL Rule Mode
- VRRP Mode
- DNS Resolver Mode
- IPFIX Exporter Mode
- IPFIX Observation Point Mode
- IPFIX Selection Process Mode
- RESTCONF mode
- WireGuard Mode
- WireGuard Peer Mode
- Tunnel Next Hop Mode
- IPIP Tunnel Mode
- ACL-Based Forwarding Interface Attachment Mode
- ACL-Based Forwarding Policy Mode
- ACL-Based Forwarding Policy Next Hop Mode
- API Endpoints
- Release Notes
- Licensing
- Glossary of Terms